Validate ClientHello session_id field length and send alert on failure
authorAlessandro Ghedini <alessandro@ghedini.me>
Wed, 13 Jan 2016 12:49:24 +0000 (12:49 +0000)
committerMatt Caswell <matt@openssl.org>
Tue, 19 Jan 2016 15:37:16 +0000 (15:37 +0000)
commit607e77300ead771e2a61a58df3981dad773c8f7a
tree235d5486856c7cfe6ab5e86027a5aaaecbcfc368
parent0555901cb432f31b1d83f8f6148d6199092301a4
Validate ClientHello session_id field length and send alert on failure

RT#4080

Reviewed-by: Rich Salz <rsalz@openssl.org>
Reviewed-by: Matt Caswell <matt@openssl.org>
ssl/s2_srvr.c
ssl/s3_srvr.c
ssl/ssl_sess.c